Forum Discussion
Deleted
Jan 24, 2019access only on corp network
A quick question here for the community: Requirement: No access to Office365 when outside the Corp network. So we have adfs, and ca policies that i have played around with but the underlying proble...
Stephen McCartney
Jan 27, 2019Copper Contributor
The user should be blocked after about 60 minutes when the access token expires, even if they change networks. Token lifetimes are configurable, so you can reduce that if you need to. See this article: https://www.risual.com/2018/01/17/modern-authentication-tokens/